Trojan Delf – server.exe – 2eec8256a92f38726fc21ba35440046c

I recommend you UnHackMe - Ultimate Malware Killer for fast malware removal:

Free Download
Fully Functional 30-day Trial. No credit card is required.
Reviews
. EULA. Privacy Policy. Uninstall.

Trojan Delf
Also known as: Trojan Agent, Trojan Swisyn
SHA256: d41ad16f934930cb7c37c74ace4729d07b72dcafcfd6f379a7f932e26143cfd8
SHA1: 6826f25367874521432edf701cc57dc357be304a
MD5: 2eec8256a92f38726fc21ba35440046c
File size: 297984 bytes

Created files:

%SysDir%\install\server.exe – Trojan Delf

Trojan Delf created autostart registry keys:

HKLM\Software\Microsoft\Active Setup\Installed Components\{08B0E5JF-4FCB-11CF-AAA5-00401C6XX500}\StubPath: %WinDir%\System32\install\server.exe Restart
HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\HKLM: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\Run\Policies: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000
HKCU\Software\Microsoft\Windows\CurrentVersion\Run\HKCU: 43003A005C00570049004E0044004F00570053005C00730079007300740065006D00330032005C0069006E007300740061006C006C005C007300650072007600650072002E006500780065000000

Leave a Reply